CVE-2026-68104

HIGHCVSS 7.8/10EPSS 0.13%

Last modified

CVE-2026-68104 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: invoke pm_genpd_remove() before freeing genpd Call pm_genpd_remove() to unregister from global list prior to releasing acp_genpd memory, and clear the pointer after free. (cherry picked from commit cd8650d7a91ee8b768e202354672553faa5cc1f2). EPSS estimates a 0.13% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: invoke pm_genpd_remove() before freeing genpd Call pm_genpd_remove() to unregister from global list prior to releasing acp_genpd memory, and clear the pointer after free. (cherry picked from commit cd8650d7a91ee8b768e202354672553faa5cc1f2)

Metrics

EPSS Probability
0.13%

2.9th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 25030321ba2860c56651429a4f28d94a6483d952, < 4d7c10b0bf09d90c81818752decbdb1966b62702; >= 25030321ba2860c56651429a4f28d94a6483d952, < 493adf29d66f23888f0e29888b6bc9512acd0825; >= 25030321ba2860c56651429a4f28d94a6483d952, < 2e406b86144c1f732eb344f1f1e09043856cfc33; >= 25030321ba2860c56651429a4f28d94a6483d952, < bdfc7f1e0900ef1361b828c4f69b72701f8a0a86; >= 25030321ba2860c56651429a4f28d94a6483d952, < 5c0a82283271759fff445ac27182072f200a888c; >= 25030321ba2860c56651429a4f28d94a6483d952, < 08fee493e0261f9e4120a5c8e7e42e8a723574e8; >= 25030321ba2860c56651429a4f28d94a6483d952, < 930a5dc3df4aa5e10393134bd5313d616dbebaf6; >= 25030321ba2860c56651429a4f28d94a6483d952, < 28c9b3c5dc35cc790d11e26ca3fc6e068be63998
LinuxLinux4.6

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-68104?
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: invoke pm_genpd_remove() before freeing genpd Call pm_genpd_remove() to unregister from global list prior to releasing acp_genpd memory, and clear the pointer after free. (cherry picked from commit cd8650d7a91ee8b768e202354672553faa5cc1f2)
How severe is CVE-2026-68104?
CVE-2026-68104 has a CVSS score of 7.8/10 (HIGH severity). The EPSS model estimates a 0.13% probability of exploitation in the next 30 days.
How do I fix CVE-2026-68104?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-68104?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST